Hacker News new | past | comments | ask | show | jobs | submit login

Did they forget to block UDP? Or they left it totally open for DNS to work?!



Usually: it’s left open to unfuck DNS.

Some of them will try force you to use their local resolver, but often UDP will be left open (or left open on port 53) because it is easier.

When they force a local resolver you can often tunnel over DNS requests, though this only works sometimes :)




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: